← Back

CVE-2023-41139

nvd nist
Published: Nov 23, 2023Modified: Nov 21, 2024

JSON object

Loading...
7.8
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Exploitability: 1.8 / Impact: 5.9
Source: NVD

Description

A maliciously crafted STP file when parsed through Autodesk AutoCAD 2024 and 2023 can be used to dereference an untrusted pointer. This vulnerability, along with other vulnerabilities, could lead to code execution in the current process.

Affected (22)

10 products
Autocad
Autocad Advance Steel
Autocad Architecture
Autocad Civil 3d
Autocad Electrical
Autocad Lt
Autocad Map 3d
Autocad Mechanical
Autocad Mep
Autocad Plant 3d
Configuration A
22 vulnerable
Vulnerable SoftwareAffected Versions
Autodesk
From 2023.0.0 to 2023.1.4
From 2024.0.0 to 2024.1.1
Before 2024.1
Autodesk
Before 2023.1.4
From 2024.0.0 to 2024.1.1
Autodesk
Before 2023.1.4
From 2024.0.0 to 2024.1.1
Autodesk
Before 2023.1.4
From 2024.0.0 to 2024.1.1
Autodesk
Before 2023.1.4
From 2024.0.0 to 2024.1.1
Autodesk
Before 2023.1.4
From 2024.0.0 to 2024.1.1
Before 2024.1
Autodesk
Before 2023.1.4
From 2024.0.0 to 2024.1.1
Autodesk
Before 2023.1.4
From 2024.0.0 to 2024.1.1
Autodesk
Before 2023.1.4
From 2024.0.0 to 2024.1.1
Autodesk
Before 2023.1.4
From 2024.0.0 to 2024.1.1

References (2)

Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory

Timeline

No history available yet.